Код: Выделить всё
00005 0 0 deny ip from table(90) to any
00010 0 0 allow icmp from 172.17.160.0/24 to table(100) not via net0 out icmptypes 8
00010 0 0 allow icmp from table(100) to 172.17.160.0/24 via net0 out icmptypes 0,3,11
00010 0 0 allow udp from me 53 to table(100) not via net0
00010 0 0 allow udp from table(100) to me dst-port 53 not via net0
00010 0 0 fwd 127.0.0.1,8081 tcp from table(100) to any dst-port 80
00010 0 0 allow tcp from any 80 to table(100) not via net0 out
00010 0 0 deny ip from table(100) to any
00020 0 0 allow icmp from 172.17.160.0/24 to 172.16.0.0/15 out icmptypes 8
00020 0 0 allow icmp from 172.16.0.0/15 to 172.17.160.0/24 out icmptypes 0,3,11
00020 12334 2304611 allow udp from me 53 to 172.16.0.0/15 not via net0
00020 12490 785763 allow udp from 172.16.0.0/15 to me dst-port 53 not via net0
00020 1976 125072 fwd 127.0.0.1,8081 tcp from not table(91) to not 172.16.0.0/15 dst-port 80 via net0
00020 4396012 6178339501 allow tcp from any 80 to 172.16.0.0/15 not via net0 out
00020 870 232814 deny ip from not table(91) to 172.16.0.0/15 not via net0 in
00031 0 0 deny ip from 172.16.10.30 to any dst-port 25
00070 1657 114131 deny ip from any to any dst-port 69,1434
00075 2349 112776 deny log ip from 172.16.0.0/15 to 172.16.0.0/15 dst-port 139,445
00080 476 24348 allow ip from any to any via lo0
00090 1207 468975 deny ip from any to any frag
00095 2564087 304115184 skipto 190 ip from 172.16.0.0/15 to table(101) in not via net0
00095 2299153 275561354 skipto 190 ip from 172.16.0.0/15 to table(101) out via net0
00100 4307 296727 deny ip from any to 10.0.0.0/8
00100 149 6032 deny ip from any to 192.168.0.0/16
00100 48 2445 deny ip from any to 0.0.0.0/8
00100 161 27481 deny ip from any to 169.254.0.0/16
00100 0 0 deny ip from any to 192.0.2.0/24
00100 7917 367873 deny ip from any to 224.0.0.0/4
00100 369 95322 deny ip from any to 240.0.0.0/4
00190 0 0 deny log ip from not table(99) to me dst-port 22 in setup
00200 376220163 305757053020 allow ip from any to any in
00250 364 87782 allow ip from me 22 to any out established
00300 0 0 allow ip from any to me
00300 1689181 182798917 allow ip from me to any
00340 24268449 5323089636 allow ip from 172.16.0.0/15 to table(102) out
00500 90 13668 pipe 500 ip from table(101) to table(51,60) out
00501 369 39822 pipe 501 ip from table(51,60) to table(101) out limit src-addr 20
00502 125 19458 allow ip from table(101) to table(51,60) out
00502 334 34032 allow ip from table(51,60) to table(101) out
00600 38027 23727434 pipe 600 ip from any to table(57,60) out
00601 35205 1689868 allow tcp from table(57,60) to any setup out
00601 2935252 2599572388 pipe 601 ip from table(57,60) to any out limit src-addr 20
00602 1816051 2457805440 allow ip from any to table(57,60) out
00602 1148106 155593410 allow ip from table(57,60) to any out
00700 20 3120 pipe 700 ip from table(101) to table(61,61) out
00701 10 1560 pipe 701 ip from table(61,61) to table(101) out limit src-addr 20
00702 20 3120 allow ip from table(101) to table(61,61) out
00702 10 1560 allow ip from table(61,61) to table(101) out
00800 1 84 pipe 800 ip from table(102) to table(62,61) out
00801 0 0 pipe 801 ip from table(62,61) to table(102) out limit src-addr 20
00802 1 84 allow ip from table(102) to table(62,61) out
00802 0 0 allow ip from table(62,61) to table(102) out
00900 8045 528585 pipe 900 ip from any to table(67,61) out
00901 671 32208 allow tcp from table(67,61) to any setup out
00901 25520 23162902 pipe 901 ip from table(67,61) to any out limit src-addr 20
00902 14208 889491 allow ip from any to table(67,61) out
00902 18848 22728942 allow ip from table(67,61) to any out
02019 6 822 pipe 2019 ip from table(101) to table(1,10) out
02020 24 2232 pipe 2020 ip from table(1,10) to table(101) out
02021 0 0 pipe 2021 ip from table(101) to table(1,11) out
02022 0 0 pipe 2022 ip from table(1,11) to table(101) out
02023 42 16765 pipe 2023 ip from table(101) to table(1,12) out
02024 0 0 pipe 2024 ip from table(1,12) to table(101) out
02025 0 0 pipe 2025 ip from table(101) to table(1,13) out
02026 0 0 pipe 2026 ip from table(1,13) to table(101) out
02041 85671 12464299 pipe 2041 ip from table(101) to table(1,21) out
02042 332465 20603561 pipe 2042 ip from table(1,21) to table(101) out
02049 1676608 1918411037 pipe 2049 ip from table(101) to table(1,25) out
02050 1084930 228937202 pipe 2050 ip from table(1,25) to table(101) out
02519 6 822 allow ip from table(101) to table(1,10) out
02520 24 2232 allow ip from table(1,10) to table(101) out
02521 0 0 allow ip from table(101) to table(1,11) out
02522 0 0 allow ip from table(1,11) to table(101) out
02523 42 16765 allow ip from table(101) to table(1,12) out
02524 0 0 allow ip from table(1,12) to table(101) out
02525 0 0 allow ip from table(101) to table(1,13) out
02526 0 0 allow ip from table(1,13) to table(101) out
02541 85671 12464299 allow ip from table(101) to table(1,21) out
02542 332458 20602547 allow ip from table(1,21) to table(101) out
02549 1615798 1914762337 allow ip from table(101) to table(1,25) out
02550 999547 217467855 allow ip from table(1,25) to table(101) out
03005 159 14352 pipe 3005 ip from table(102) to table(2,3) out
03006 0 0 pipe 3006 ip from table(2,3) to table(102) out
03013 379613 83801642 pipe 3013 ip from table(102) to table(2,7) out
03014 0 0 pipe 3014 ip from table(2,7) to table(102) out
03015 1329 92120 pipe 3015 ip from table(102) to table(2,8) out
03016 0 0 pipe 3016 ip from table(2,8) to table(102) out
03017 3300019 1680273566 pipe 3017 ip from table(102) to table(2,9) out
03018 0 0 pipe 3018 ip from table(2,9) to table(102) out
03031 0 0 pipe 3031 ip from table(102) to table(2,16) out
03032 0 0 pipe 3032 ip from table(2,16) to table(102) out
03037 0 0 pipe 3037 ip from table(102) to table(2,19) out
03038 0 0 pipe 3038 ip from table(2,19) to table(102) out
03119 572351 850541641 pipe 3119 ip from table(102) to table(2,60) out
03120 0 0 pipe 3120 ip from table(2,60) to table(102) out
03123 879 1040302 pipe 3123 ip from table(102) to table(2,62) out
03124 0 0 pipe 3124 ip from table(2,62) to table(102) out
03505 159 14352 allow ip from table(102) to table(2,3) out
03506 0 0 allow ip from table(2,3) to table(102) out
03513 379598 83782550 allow ip from table(102) to table(2,7) out
03514 0 0 allow ip from table(2,7) to table(102) out
03515 1329 92120 allow ip from table(102) to table(2,8) out
03516 0 0 allow ip from table(2,8) to table(102) out
03517 3299983 1680219566 allow ip from table(102) to table(2,9) out
03518 0 0 allow ip from table(2,9) to table(102) out
03531 0 0 allow ip from table(102) to table(2,16) out
03532 0 0 allow ip from table(2,16) to table(102) out
03537 0 0 allow ip from table(102) to table(2,19) out
03538 0 0 allow ip from table(2,19) to table(102) out
03619 566603 842051485 allow ip from table(102) to table(2,60) out
03620 0 0 allow ip from table(2,60) to table(102) out
03623 879 1040302 allow ip from table(102) to table(2,62) out
03624 0 0 allow ip from table(2,62) to table(102) out
65534 18320 3215713 deny ip from any to any
65535 4428070 3584370297 allow ip from any to any
В таблицах 1 и 2 ипы пользователей(Например 172.17.158.7/32 60), в зависимости от скорости ипа - разные значения второй цифры.